{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,29]],"date-time":"2026-03-29T06:51:23Z","timestamp":1774767083551,"version":"3.50.1"},"reference-count":51,"publisher":"Springer Science and Business Media LLC","issue":"3","license":[{"start":{"date-parts":[[2024,12,17]],"date-time":"2024-12-17T00:00:00Z","timestamp":1734393600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,12,17]],"date-time":"2024-12-17T00:00:00Z","timestamp":1734393600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"funder":[{"name":"Scientific and technological innovation 2030 - major project of new generation artificial intelligence","award":["2020AAA0109300"],"award-info":[{"award-number":["2020AAA0109300"]}]},{"DOI":"10.13039\/501100003399","name":"Shanghai Science and Technology Commission","doi-asserted-by":"crossref","award":["22DZ2205600"],"award-info":[{"award-number":["22DZ2205600"]}],"id":[{"id":"10.13039\/501100003399","id-type":"DOI","asserted-by":"crossref"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Appl Intell"],"published-print":{"date-parts":[[2025,2]]},"DOI":"10.1007\/s10489-024-05938-5","type":"journal-article","created":{"date-parts":[[2024,12,17]],"date-time":"2024-12-17T09:20:15Z","timestamp":1734427215000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Unsupervised perturbation based self-supervised federated adversarial training"],"prefix":"10.1007","volume":"55","author":[{"given":"Yuyue","family":"Zhang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hanchen","family":"Ye","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5859-3211","authenticated-orcid":false,"given":"Xiaoli","family":"Zhao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,12,17]]},"reference":[{"key":"5938_CR1","unstructured":"McMahan HB, Moore E, Ramage D et\u00a0al (2016) Communication-efficient learning of deep networks from decentralized data. In: International conference on artificial intelligence and statistics"},{"key":"5938_CR2","doi-asserted-by":"publisher","first-page":"8432","DOI":"10.1609\/aaai.v36i8.20819","volume":"36","author":"Y Tan","year":"2022","unstructured":"Tan Y, Long G, Liu L et al (2022) Fedproto: federated prototype learning across heterogeneous clients. Proc AAAI Conf Artif Intell 36:8432\u20138440. https:\/\/doi.org\/10.1609\/aaai.v36i8.20819","journal-title":"Proc AAAI Conf Artif Intell"},{"key":"5938_CR3","unstructured":"Zhang J, Li Z, Li B et\u00a0al (2022) Federated learning with label distribution skew via logits calibration. In: Chaudhuri K, Jegelka S, Song L et al (eds) Proceedings of the 39th international conference on machine learning, proceedings of machine learning research, vol 162. PMLR, pp 26311\u201326329. https:\/\/proceedings.mlr.press\/v162\/zhang22p.html"},{"key":"5938_CR4","unstructured":"Tan Y, Long G, Ma J et\u00a0al (2022) Federated learning from pre-trained models: a contrastive learning approach. In: Koyejo S, Mohamed S, Agarwal A et al (eds) Advances in neural information processing systems, vol\u00a035. Curran Associates, Inc., pp 19332\u201319344. https:\/\/proceedings.neurips.cc\/paper_files\/paper\/2022\/file\/7aa320d2b4b8f6400b18f6f77b6c1535-Paper-Conference.pdf"},{"key":"5938_CR5","doi-asserted-by":"publisher","unstructured":"Lyu L, Yu H, Ma X et\u00a0al (2022) Privacy and robustness in federated learning: attacks and defenses. IEEE Trans Neural Netw Learn Syst, pp 1\u201321. https:\/\/doi.org\/10.1109\/TNNLS.2022.3216981","DOI":"10.1109\/TNNLS.2022.3216981"},{"key":"5938_CR6","unstructured":"Zizzo G, Rawat A, Sinn M et\u00a0al (2020) FAT: federated adversarial training. CoRR abs\/2012.01791. https:\/\/arxiv.org\/abs\/2012.01791, arXiv:2012.01791"},{"key":"5938_CR7","doi-asserted-by":"crossref","unstructured":"Hong J, Wang H, Wang Z, et\u00a0al (2023) Federated robustness propagation: sharing adversarial robustness in federated learning. In: AAAI","DOI":"10.1609\/aaai.v37i7.25955"},{"issue":"2","key":"5938_CR8","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3298981","volume":"10","author":"Q Yang","year":"2019","unstructured":"Yang Q, Liu Y, Chen T et al (2019) Federated machine learning: concept and applications. ACM Trans Intell Syst Technol (TIST) 10(2):1\u201319","journal-title":"ACM Trans Intell Syst Technol (TIST)"},{"key":"5938_CR9","unstructured":"Madry A, Makelov A, Schmidt L et\u00a0al (2018) Towards deep learning models resistant to adversarial attacks. In: 6th International conference on learning representations. ICLR 2018 - Conference Track Proceedings"},{"key":"5938_CR10","unstructured":"Zhang H, Yu Y, Jiao J et\u00a0al (2019) Theoretically principled trade-off between robustness and accuracy. In: International conference on machine learning. PMLR, pp 7472\u20137482"},{"key":"5938_CR11","doi-asserted-by":"crossref","unstructured":"Chen C, Zhang J, Xu X et\u00a0al (2022) Decision boundary-aware data augmentation for adversarial training. IEEE Trans Dependable Secure Comput","DOI":"10.1109\/TDSC.2022.3165889"},{"key":"5938_CR12","doi-asserted-by":"crossref","unstructured":"Wang D, Jin W, Wu Y et\u00a0al (2023) Atgan: adversarial training-based gan for improving adversarial robustness generalization on image classification. Appl Intell, pp 1\u201317","DOI":"10.1007\/s10489-023-04847-3"},{"key":"5938_CR13","unstructured":"Carmon Y, Raghunathan A, Schmidt L et\u00a0al (2019) Unlabeled data improves adversarial robustness. In: Proceedings of the 33rd international conference on neural information processing systems, pp 11192\u201311203"},{"key":"5938_CR14","unstructured":"Zhang J, Zhu J, Niu G et\u00a0al (2021) Geometry-aware instance-reweighted adversarial training. In: ICLR"},{"key":"5938_CR15","unstructured":"Tsipras D, Santurkar S, Engstrom L et\u00a0al (2018) Robustness may be at odds with accuracy. In: International conference on learning representations"},{"key":"5938_CR16","unstructured":"Croce F, Hein M (2020) Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks. In: International conference on machine learning, pp 2206\u20132216"},{"key":"5938_CR17","first-page":"429","volume":"2","author":"T Li","year":"2020","unstructured":"Li T, Sahu AK, Zaheer M et al (2020) Federated optimization in heterogeneous networks. Proc Mach Learn Syst 2:429\u2013450","journal-title":"Proc Mach Learn Syst"},{"key":"5938_CR18","unstructured":"Zhu J, Yao J, Liu T et\u00a0al (2023) Combating exacerbated heterogeneity for robust models in federated learning. In: The Eleventh international conference on learning representations. https:\/\/openreview.net\/forum?id=eKllxpLOOm"},{"key":"5938_CR19","unstructured":"Chen C, Liu Y, Ma X et\u00a0al (2022) Calfat: calibrated federated adversarial training with label skewness. In: Advances in neural information processing systems"},{"key":"5938_CR20","unstructured":"Wang T, Isola P (2020) Understanding contrastive representation learning through alignment and uniformity on the hypersphere. In: ICML"},{"key":"5938_CR21","unstructured":"Jiang Z, Chen T, Chen T et\u00a0al (2020) Robust pre-training by adversarial contrastive learning. In: NeurIPS"},{"key":"5938_CR22","unstructured":"Fan L, Liu S, Chen PY et\u00a0al (2021) When does contrastive learning preserve adversarial robustness from pretraining to finetuning? In: NeurIPS"},{"key":"5938_CR23","first-page":"2983","volume":"33","author":"M Kim","year":"2020","unstructured":"Kim M, Tack J, Hwang SJ (2020) Adversarial self-supervised contrastive learning. Adv Neural Inf Process Syst 33:2983\u20132994","journal-title":"Adv Neural Inf Process Syst"},{"key":"5938_CR24","unstructured":"Zhuang W, Wen Y, Zhang S (2022) Divergence-aware federated self-supervised learning. In: International conference on learning representations. https:\/\/openreview.net\/forum?id=oVE1z8NlNe"},{"key":"5938_CR25","doi-asserted-by":"crossref","unstructured":"Zhuang W, Gan X, Wen Y et\u00a0al (2021) Collaborative unsupervised visual representation learning from decentralized data. In: Proceedings of the IEEE\/CVF international conference on computer vision, pp 4912\u20134921","DOI":"10.1109\/ICCV48922.2021.00487"},{"key":"5938_CR26","doi-asserted-by":"crossref","unstructured":"van Berlo B, Saeed A, Ozcelebi T (2020) Towards federated unsupervised representation learning. In: Proceedings of the third ACM international workshop on edge systems, analytics and networking, pp 31\u201336","DOI":"10.1145\/3378679.3394530"},{"issue":"8","key":"5938_CR27","doi-asserted-by":"publisher","first-page":"1181","DOI":"10.1631\/FITEE.2200268","volume":"24","author":"F Zhang","year":"2023","unstructured":"Zhang F, Kuang K, Chen L et al (2023) Federated unsupervised representation learning. Front Inf Technol Electron Eng 24(8):1181\u20131193","journal-title":"Front Inf Technol Electron Eng"},{"key":"5938_CR28","first-page":"21271","volume":"33","author":"JB Grill","year":"2020","unstructured":"Grill JB, Strub F, Altch\u00e9 F et al (2020) Bootstrap your own latent-a new approach to self-supervised learning. Adv Neural Inf Process Syst 33:21271\u201321284","journal-title":"Adv Neural Inf Process Syst"},{"issue":"9","key":"5938_CR29","doi-asserted-by":"publisher","first-page":"10879","DOI":"10.1007\/s10489-022-04070-6","volume":"53","author":"S Li","year":"2023","unstructured":"Li S, Mao Y, Li J et al (2023) Fedutn: federated self-supervised learning with updating target network. Appl Intell 53(9):10879\u201310892","journal-title":"Appl Intell"},{"key":"5938_CR30","doi-asserted-by":"crossref","unstructured":"Zhang C, Zhang K, Zhang C et\u00a0al (2022) Decoupled adversarial contrastive learning for self-supervised adversarial robustness. In: European conference on computer vision. Springer, pp 725\u2013742","DOI":"10.1007\/978-3-031-20056-4_42"},{"key":"5938_CR31","doi-asserted-by":"crossref","unstructured":"Wu Z, Xiong Y, Yu SX et\u00a0al (2018) Unsupervised feature learning via non-parametric instance discrimination. In: Proceedings of the IEEE conference on computer vision and pattern recognition, pp 3733\u20133742","DOI":"10.1109\/CVPR.2018.00393"},{"key":"5938_CR32","doi-asserted-by":"crossref","unstructured":"Wang X, Zhang R, Shen C et\u00a0al (2021) Dense contrastive learning for self-supervised visual pre-training. In: Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition, pp 3024\u20133033","DOI":"10.1109\/CVPR46437.2021.00304"},{"key":"5938_CR33","doi-asserted-by":"crossref","unstructured":"Zhuang C, Zhai AL, Yamins D (2019) Local aggregation for unsupervised learning of visual embeddings. In: Proceedings of the IEEE\/CVF international conference on computer vision, pp 6002\u20136012","DOI":"10.1109\/ICCV.2019.00610"},{"key":"5938_CR34","unstructured":"Henaff O (2020) Data-efficient image recognition with contrastive predictive coding. In: International conference on machine learning. PMLR, pp 4182\u20134192"},{"key":"5938_CR35","doi-asserted-by":"crossref","unstructured":"Tian Y, Krishnan D, Isola P (2020) Contrastive multiview coding. In: Computer vision\u2013ECCV 2020: 16th European Conference, Glasgow, UK, August 23\u201328, 2020, Proceedings, Part XI 16. Springer, pp 776\u2013794","DOI":"10.1007\/978-3-030-58621-8_45"},{"key":"5938_CR36","doi-asserted-by":"crossref","unstructured":"Yeh CH, Hong CY, Hsu YC et\u00a0al (2022) Decoupled contrastive learning. In: European conference on computer vision. Springer, pp 668\u2013684","DOI":"10.1007\/978-3-031-19809-0_38"},{"key":"5938_CR37","unstructured":"Chen T, Kornblith S, Norouzi M et\u00a0al (2020) A simple framework for contrastive learning of visual representations. In: International conference on machine learning. PMLR, pp 1597\u20131607"},{"issue":"3","key":"5938_CR38","doi-asserted-by":"publisher","first-page":"50","DOI":"10.1109\/MSP.2020.2975749","volume":"37","author":"T Li","year":"2020","unstructured":"Li T, Sahu AK, Talwalkar A et al (2020) Federated learning: challenges, methods, and future directions. IEEE Signal Process Mag 37(3):50\u201360","journal-title":"IEEE Signal Process Mag"},{"key":"5938_CR39","unstructured":"Luo J, Wu X, Luo Y et\u00a0al (2019) Real-world image datasets for federated learning. arXiv:1910.11089. https:\/\/api.semanticscholar.org\/CorpusID:204852365"},{"key":"5938_CR40","unstructured":"Krizhevsky A, Hinton G (2009) Learning multiple layers of features from tiny images. Technical report"},{"key":"5938_CR41","unstructured":"Netzer Y, Wang T, Coates A et\u00a0al (2011) Reading digits in natural images with unsupervised feature learning. NIPS"},{"key":"5938_CR42","doi-asserted-by":"crossref","unstructured":"He K, Zhang X, Ren S et\u00a0al (2016) Deep residual learning for image recognition. In: Proceedings of the IEEE conference on computer vision and pattern recognition, pp 770\u2013778","DOI":"10.1109\/CVPR.2016.90"},{"key":"5938_CR43","doi-asserted-by":"crossref","unstructured":"Kolesnikov A, Zhai X, Beyer L (2019) Revisiting self-supervised visual representation learning. In: Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition, pp 1920\u20131929","DOI":"10.1109\/CVPR.2019.00202"},{"key":"5938_CR44","unstructured":"Wong E, Rice L, Kolter JZ (2019) Fast is better than free: revisiting adversarial training. In: International conference on learning representations"},{"key":"5938_CR45","unstructured":"Kurakin A, Goodfellow I, Bengio S (2016) Adversarial machine learning at scale. arXiv preprint arXiv:1611.01236"},{"key":"5938_CR46","doi-asserted-by":"crossref","unstructured":"Andriushchenko M, Croce F, Flammarion N et\u00a0al (2020) Square attack: a query-efficient black-box adversarial attack via random search. In: European conference on computer vision. Springer, pp 484\u2013501","DOI":"10.1007\/978-3-030-58592-1_29"},{"key":"5938_CR47","doi-asserted-by":"crossref","unstructured":"Rahmati A, Moosavi-Dezfooli SM, Frossard P et\u00a0al (2020) Geoda: a geometric framework for black-box adversarial attacks. In: Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition, pp 8446\u20138455","DOI":"10.1109\/CVPR42600.2020.00847"},{"key":"5938_CR48","unstructured":"Croce F, Hein M (2020) Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacks. In: International conference on machine learning, pp 2206\u20132216"},{"key":"5938_CR49","unstructured":"Wang Y, Zou D, Yi J et\u00a0al (2019) Improving adversarial robustness requires revisiting misclassified examples. In: International conference on learning representations"},{"key":"5938_CR50","doi-asserted-by":"crossref","unstructured":"He K, Fan H, Wu Y et\u00a0al (2020) Momentum contrast for unsupervised visual representation learning. In: Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition, pp 9729\u20139738","DOI":"10.1109\/CVPR42600.2020.00975"},{"key":"5938_CR51","doi-asserted-by":"crossref","unstructured":"Chen X, He K (2021) Exploring simple siamese representation learning. In: Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition, pp 15750\u201315758","DOI":"10.1109\/CVPR46437.2021.01549"}],"container-title":["Applied Intelligence"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10489-024-05938-5.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10489-024-05938-5\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10489-024-05938-5.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,1,30]],"date-time":"2025-01-30T16:02:58Z","timestamp":1738252978000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10489-024-05938-5"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,12,17]]},"references-count":51,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2025,2]]}},"alternative-id":["5938"],"URL":"https:\/\/doi.org\/10.1007\/s10489-024-05938-5","relation":{},"ISSN":["0924-669X","1573-7497"],"issn-type":[{"value":"0924-669X","type":"print"},{"value":"1573-7497","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,12,17]]},"assertion":[{"value":"12 October 2024","order":1,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"17 December 2024","order":2,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"Not applicable.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Ethics Approval"}},{"value":"The authors have no competing interests to declare that are relevant to the content of this article.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing Interests"}}],"article-number":"177"}}